Risk

Should I remove “MSIL/Riskware.GameTool.F”?

Malware Removal

The MSIL/Riskware.GameTool.F is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL/Riskware.GameTool.F virus can do?

  • Creates RWX memory
  • Drops a binary and executes it
  • Installs itself for autorun at Windows startup

How to determine MSIL/Riskware.GameTool.F?


File Info:

crc32: 6C22BC55
md5: 3981d3907ab59cfe98b0d6cb3a2c564a
name: 3981D3907AB59CFE98B0D6CB3A2C564A.mlw
sha1: d8bec854955b9bea1b1e3224c124d43d6d5a46d6
sha256: 01aa91abfb12a7f65308323d0c2ad6b226c74d98db2df8fc242b9ba29a636d7a
sha512: 3b583acd6703a265aa49e7526598b565f7f97e421b62002d9d37f1557e83f37dcbdbcf4000052c9124f23d8186d45d4ad9fe9a743d566f60e683152f71deebe9
ssdeep: 1536:EnUEtXr0hFBKexYTMUD9dRqTjG/0OxkkV1gx+7iBkO6ESmooNmIaSpZt4h:En/tbwFRY0w0iZV1O+7iBZpSmooNmID
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 Microsoft 2014
Assembly Version: 1.0.0.0
InternalName: hl.exe
FileVersion: 1.0.0.0
CompanyName: Microsoft
ProductName: hl
ProductVersion: 1.0.0.0
FileDescription: hl
OriginalFilename: hl.exe

MSIL/Riskware.GameTool.F also known as:

CAT-QuickHealTrojan.AgentFC.S13562553
ALYacGen:Variant.Ransom.294
ZillyaTrojan.QQPass.Win32.57864
BitDefenderGen:Variant.Ransom.294
Cybereasonmalicious.07ab59
ESET-NOD32a variant of MSIL/Riskware.GameTool.F
APEXMalicious
AlibabaRiskWare:MSIL/TScope.fa2b3449
MicroWorld-eScanGen:Variant.Ransom.294
Ad-AwareGen:Variant.Ransom.294
BitDefenderThetaGen:NN.ZemsilF.34758.gm0@aixBqKp
McAfee-GW-EditionArtemis
FireEyeGeneric.mg.3981d3907ab59cfe
EmsisoftGen:Variant.Ransom.294 (B)
SentinelOneStatic AI – Malicious PE
WebrootW32.QQPass.mesr
ArcabitTrojan.Ransom.294
AegisLabTrojan.Win32.Generic.4!c
GDataGen:Variant.Ransom.294
McAfeeArtemis!3981D3907AB5
VBA32TScope.Trojan.MSIL
IkarusVirus.Win32.Virut
Paloaltogeneric.ml

How to remove MSIL/Riskware.GameTool.F?

MSIL/Riskware.GameTool.F removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment